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Q (57) Abstract: A method and system for embedding (E) information bits in a source signal (A) like images, audio or video. The 
embedding being performed optimally for a given worst-case scenario of unintentional or intentional attack of the host signal (to 
^ remove the embedded bits), and a given distortion of the host signal due to information embedding. 
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METHOD AND SYSTEM FOR STEGANOGRAPHICALLY EMBEDDING 
INFORMATION BITS IN SOURCE SIGNALS 

This invention relates to a method and system for embedding information 
5 , bits in a host signal. The embedding may be performed to determine origin of any 
perfect or imperfect copies of the composite (host plus message) signal, or to use 
the host signal as a cover for secret or covert communications, over a channel 
which is primarily meant for transmitting the host signal only. 

10 BACKGROUND OF THE INVENTION 

Data hiding or steganography is the art of hiding a message signal in a host 
signal, without any perceptual distortion of the host signal. The composite (host 
plus message) signal is also referred to as stego-signal. Though steganography is 
often confused with the relatively well-known cryptography, the two are but 
15 loosely related. Cryptography is about hiding the contents of a message. 
Steganography, on the other hand, is about concealing the very fact that a message 
is hidden. Steganography may be considered as communication through 
subliminal channels, or secret communication. 

20 Rapid increases in bandwidth available for dissemination and storage of 

digital content and availability of software tools for editing multimedia content, 
such as, video, images or audio calls for systems and methods to establish origin of 
such content. In addition, large volumes of multimedia content being exchanged 
over insecure channels, such as, the Internet, provide within themselves secure and 

25 subliminal steganographic channels for secure or secret communications. 



The proliferation of digital multimedia as opposed to conventional analog 
forms, is primarily a result of (1) the ease with which digital data can be exchanged 
over the Internet, and (2) the emergence of efficient multimedia data compression 
30 techniques. 

The first reason listed above is also a major cause for concern. Unlimited 
perfect copies of the original content can be made, and distributed easily. It was 
this concern of protecting intellectual property rights of multimedia data in digital 
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form, that primarily triggered researchers to find ways to watermark multimedia 
data. Watermarking the content is done by embedding some data in the host signal 
(original content). The embedded data may be an imperceptible signature, which 
the owner of the multimedia content should be able to extract when a dispute 

5 regarding ownership occurs. 

Data hiding in multimedia could help in providing proof of origin and 
distribution of content. Multimedia content providers would be able to 
communicate with the compliant multimedia players (or Tenderers) through the 
10 subliminal, steganographic channel. This communication may control or restrict 
access of multimedia content, and carry out e-.commerce for pay-per-use 
implementations. 

A typical application of data hiding for multimedia content delivery may 
15 involve the content providers supplying the raw multimedia data (say a full length 
movie) along with some hidden agents or control data . The job of the distributors 
would be to package the content in some suitable format (such as, MPEG) 
understandable by the player, for distribution of the multimedia through 
DVDs/CDs or live digital broadcasts, or by hosting web sites for downloads or 
20 streaming. The compliant multimedia players, will typically be connected to the 
Internet. 

In conventional multimedia distribution, the content provider looses all 
control over how the multimedia is used/abused the moment it is acquired by 
25 another party. The key idea behind data hiding is to re-establish control whenever 
the content is used. The content provider, by hiding an agent in his raw data, hopes 
to control access to his/her multimedia content. This can be done with the co- 
operation of the players, and an established protocol for communication between 
the content providers and the compliant multimedia players. 

30 

Data hiding can be broadly classified into two categories depending on 
whether the original content is needed for extraction of the hidden bits: (1) non- 
oblivious methods need the original content for extracting the hidden bits; and (2) 

2 
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on the other hand, oblivious detection methods extract the hidden bits without any 
knowledge of the original. 



In most data hiding methods, sequence of bits to be embedded, viz. B, is 
5 converted to a form suitable for embedding in a cover content. Initially, the bit 
sequence is converted to a signature sequence. Thereafter, the signature sequence 
is embedded in the cover content by an embedding function to obtain the stego- 
content. 

1 0 From a signal processing perspective; data hiding methods can be classified 

into two categories, depending on the type of embedding and detecting operators. 
The first category includes methods where the embedding function adds the 
signature sequence linearly to stego-content, and the detector detects from the 
stego-content via correlative processing (these methods are referred to as Type I 

15 methods in data hiding literature). In the second category the embedding function 
and the detector are non-linear, typically employing quantizers (these methods are 
referred to as Type II methods in data hiding literature). One of the important 
characteristics of the non-linear methods is their ability to suppress the noise due to 
the original content (or self-noise), even though the original content is not available 

20 at the receiver. 

The present invention provides a unique data hiding technique that 
substantially reduces the effect that noise, distortion or corruption of the host signal 
have on the detected signal so as to greatly enhance the integrity of steganography 
25 techniques employing oblivious detection of the hidden data. The crux of the 
invention is a class of methods referred to as Type III methods of which Types I 
and II are just special cases. An optimal choice of parameters for the proposed 
Type III methods depending on the engineering constraints, can substantially 
improve the performance of data hiding. 

30 

The present invention also provides many additional advantages, which 
shall become apparent as described below. 
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SUMMARY OF THE INVENTION 

A method for embedding a message signal in a host signal, the method 
comprising the steps of: 
5 (a) embedding the message signal into the host signal, thereby producing 

a stego signal; and 

(b) detecting an estimate of the message signal from the stego signal; 
provided that the detecting step (b) is not an exact inverse of the 
embedding step (a), and the host signal cannot be exactly extracted 
10 from the stego signal. 

The embedding step (a) produces a value b t in the stego signal from a 
value a i in the host signal, and wherein the embedding step (a) comprises limiting 

to a limit value ~ , a magnitude of difference between b i and a f . 

15 

Furthermore, the embedding step (a) employs a continuous periodic 
function to produce the stego signal, and wherein the detecting step (b) employs a 
continuous periodic function to produce the estimated message signal. The 
continuous periodic function is a triangular function f(x) having a period A, 
20 wherein: 

~4^/(*)^T forallx ; 

4 4 
/(0) = -|; and 

y V 4 

Optionally, the embedding step (a) produces a value b t in the stego signal 
25 from a value a t in the host signal and a value s t in the message signal, such that 
the embedding step (a): 

(i) is subject to a maximum distortion constraint P, 

(ii) employs a continuous periodic function having a period A , and 

4 



WO 02/13436 PCT/US01/24468 
(iii) is represented by the function b f = E{a lz s i ), and employs an 
algorithm as follows: 

if rem(—) > — , then p, = 3 — - rem(—) , 
V A 7 2 Fi 4 V 

else p t =rem(^)-^; 



if (I e t \> , then e, = sign^)^ 
f a i\ 

q^rem{—)\ 
A 

if ^ >y,then e, = -€,; 

if a,. > 0 5 then b f =a f + e x , 
10 else 6, =<?,. -e,. 

The method of the present invention is particularly useful when the stego 
signal is corrupted or distorted prior to detecting step (b). In this embodiment 
where the stego signal is corrupted a value b t in the stego signal is modified after 

15 the embedding step (a) to yield a value c § in the corrupted or distorted stego 
signal, such that the detecting step (b): 

(i) produces a value s ei in the estimated message signal from a value 
c ( in a distorted stego signal, 
20 (ii) employs a continuous periodic function having a period A , and 

(iii) is represented by the function s ei =D(c i ), and employs an 
algorithm as follows: 

A 

if q t >-|,then s et =3j-?,, 
25 else s et = q t - . 
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Preferably the host signal is a sequence a /5 for i = 1 to TV ; the message 
signal is a sequence s i9 for i = l to A''; the stego signal is a sequence for 
i = l to N; the corrupted or distorted stego signal is a sequence c /3 for 
5 z' = l to JV; and the estimated message signal is a sequence s el9 for 
f = l to N . 

The embedding step (a) preferably (i) imposes a limit — on a magnitude 

2 

difference between a value b t in the stego signal that is produced from a value a i 
10 in the host signal; and (ii) employs a continuous periodic function having a period 

A to produce the stego signal, wherein such the limit ^ and the period A are 

chosen to minimize a mean square distance between the message signal and the 
estimated message signal, subject to a maximum distortion constraint P of the 
embedding step (a). 

15 

The present invention also provides a method for mapping K information 
bits to a message signal s i , i = 1 to N . This method comprising the step of: 

grouping the K information bits together to represent one of 2 L symbols, wherein 
each of the 2 L symbol is mapped to a basis vector or its negative of a 2 1 " 1 x 2 L ~ l 
20 orthogonal transform matrix. The orthogonal transform matrix is obtained from a 
cyclic* all-pass filter and its circular shifts. The cyclic all-pass filter is preferably 
obtained from a key. 

25 BRIEF DESCRIPTION OF THE DRAWINGS 

Fig. 1 is a block diagram of the data embedding, channel and detection 
operation according to the present invention; 

Fig. 2 is a graph depicting a periodic triangular function employed by the 
30 detector D of Fig. 1; 

6 
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Fig. 3(a) is a graph demonstrating that the distortion introduced during the 
embedding the S in A (to obtain B ) of Fig. 1 in accordance with Type II will be 

uniformly distributed between and + — ; 

2 2 

Fig. 3(b) is a graph depicting the distribution of the distortion introduced in 
accordance with the method of the present invention; and 



Fig. 3(c) is a graph depicting the distribution of the limiting noise t f . 

10 

DETAILED DESCRIPTION OF THE PREFERRED EMBODIMENT 

The present invention is a method for efficient secure communication over 
subliminal channels provided by multimedia host signals like audio, { images and 
15 video transmitted over any channel. For example, the host signal may be 
transmitted over the Internet or distributed in storage mediums by other means or 
even transmitted over analog channels, such as, that used for analog television or 
radio broadcasts. Typically the host signal is expected to undergo some distortion 
before it reaches one or many end points where it may be stored or rendered. 

20 

In the method described herein, the host signal may be any form of 
naturally occurring signals, such as, audio, image or video or artificially 
synthesized versions of them. The host signal may further be represented in some 
transform domain. The choice of the transform may depend on the nature of the 

25 application. For example, if the host signal is an image and is not expected to be 
re-scaled, resized or rotated, any unitary transform may be used. On the other hand, 
if the image is likely to undergo rotation, scaling and/or translation, a Rotation- 
Scale-Translation invariant transform may be used. If the image is cropped, data 
embedding may be performed in many blocks of the image, so that the hidden bits 

30 can be extracted even if one such block survives. In general, the host signal can be 
coefficients of a one-to-one transform or a many-to-one transform. 
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In the method described herein, the host signal can therefore be considered 
as a vector or a sequence of N real or complex numbers, represented by 
A = [a } a 2 a N ]. 



10 



A sequence of K bits, represented by 

/ = ft h - hi iJ = V0forl<j<K 
is mapped by a mapping M to a signature sequence S , 

M :I where 

S = I>! J 2 



An embedder£ embeds the sequence in A to obtain the stego sequence jB, 
B = E(A,S) 9 where 

5 = [Z>i 6 2 ■■• 

the embedding being performed element-wise, 

b x =E(a l9 s x ) 
b 2 =E(a 2 ,s 2 ) 
15 b 3 =E(a 3 ,s 3 ) 

b N =E(a N ,s N ) 

subject to the constraint that d(A,B) < P where d(A,B) is some distance measure 
of signals A and B , and P is the maximum permitted distortion of the host 
signal. In the preferred embodiment the distance measure is the mean square error: 

d (A B) = (^i-^i) 2 +(^-^) 2 +- + K-^) 2 

N 

20 

The stego sequence B may undergo some distortion before it reaches the 
detector as C, given by C = B + Z , where 

Z = [Zj z 2 •*• z^], 
is the noise in the channel used for transmitting the host signal, and 
25 C = [c, c 2 ■•• cj. 
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The detector D obtains an estimate S e of the signature sequence S 

embedded; 

5 The block diagram of data embedding, the channel and detection operation 

is shown in FIGURE 1. 

Based on this generalization of the embedding and detecting functions E 
and D , prior art in this field can be categorized into two types. 

10 

Characteristics of Type I 

• B = E{A 9 S)-+B = A + S 

• D(B) = A + S*S 

The above two equations imply that E and D are not inverses. 
15 In addition, if S is known one can obtain the original host sequence 
A from B as A = B-S. 



Characteristics of Type II 
• B = E(A 9 S) 
20 • D(B) = S 



Unlike Type I methods, the above two equations show that for Type II 
methods E and D are exact inverses. Additionally, unlike Type I methods, it is 
not possible to obtain A exactly, given B and S . 

25 

In the core of this invention is a class of embedding and detection operators 
E and D , we shall refer to as Type III. 



Characteristics of Type III 
30 • B = E(A,S) 

• D(B) * S 
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The above two equations illustrate that E and D are not exact inverses (like Type 
I and unlike Type II). Further, given S and B it is not possible to obtain A (like 
Type II and unlike Type I). 

5 In a preferred embodiment described herein, the detector D , where 

S e =D(C),S e =[s el s e2 - SeN ] 

is implemented by the following algorithm: 

t C i\ 

q t =rem{-fy 9 
A 

if > | then * e/ = 3^-?,-, 

10 else s ei = q t 

In the above algorithm, rem (x) stands for the remainder of a division operation 
(x). For example, 

rem(5/4)=l, rem(2/2)=0, rem(-6/4)=rem(6/4)=2. 

15 The choice of the parameter A is dictated by the distortion constraint P and the 
energy of the channel noise Z . The detector may also be thought of as employing 
a periodic triangular function shown in FIGURE 2, 

y- f( x ) = f( x + f° r integer m . Also, 

--</(*)<- for all x, 
4 4 



20 and specifically, 



/(0) = -f 
J 2 4 



The embedding operation b, =E(a„s,) is implemented by the following 
algorithm: 

25 if rem(—) > — , then p, = 3 — - rem(—) , 
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else p i =rem(^)-j; 

e t = s i ~Pn 

R R 
if (I e i !> y) > e t = sign{e t )^ ; 

if rem(—) > — , then e, = -e, : 
A 2 

5 if a j > 0 , then b i ^a J + e f , 

else b i -a i -e r 



In the above algorithm, J3 is a parameter, the choice of which is dictated 
by the distortion constraint P and the energy of the channel noise Z . Also sign 
10 (x) equals +1 if the quantity 6 x' is positive and sign (x) equals -1 if the quantity V 
is negative. For example, 

sign(-20) = sign(-l) = -1, and sign(l 1) = sign(l) = +1. 

As an example of the embedding and detection operations, let 
15 A=[-65, -250, 19, 43, -172, 179, 178, -6], and 

S=[10, 10, -10, 10,-10, 10, -10, 10], 

A = 40, and /? = 10 (Note that ~^s t <~ for alii). 

Now B = E(A,S) is given by 

B=[-60,-255, 14, 48,-167, 180, 173,-11]. Let 
20 Z=K -8, 2, -10, -5, 3, -6, -4]. Therefore, 

C=B+Z=[-64,-263, 16, 38,-172, 183, 167,-15], and 
S e =D(C) is now 

S e =[6, 7,6,-8,2,7,-3,5]. 

Now let us consider b f = E(a l ,s t ), for i=l . a } = -65, s x = 1 0 . 

25 If rem{^-) > - , then p § = 3 - - rem(^) , 

V A 2 Fl 4 V A^ 

rem(^) = 25>~, Pl =30-25 = 5 
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else V: = rem(—) - — 
e l = s i -p i e x =10-5 = 5 

if (I «i l> y) > Aen e t = sign(e f )^ e x =£ 

if raw(^) >| e f = -e, ««(|) = 25 > -| , e x = -5 

5 . if a i > 0 6, = a t + e i 

else b i = (3,. - e,. b x = -65 - (-5) = -60 



Now Cj = b x + Zj = -60 - 4 = -64 . For detection, 

a, = rem(—). q } = rew( ) = 24 

10 if ^ > - then = 3--ft ^ = 24 > 20, s el = 30-24 = 6 

2 4 1 — ■ 

else s ei =ft~- 



For Type II systems (A = y?) the distortion introduced, viz. B-A for 
embedding the S in A (to obtain 5) will be uniformly distributed between 

15 and + y (FIGURE 3a), and the average energy of the distortion introduced in A 

will be . For Type III systems, the distribution of the distortion introduced is 

depicted in FIG. 3b. The average energy of the distortion for a Type III system is 
given by 

/? 2 (3A-2^) 
12A 

20 While for Type II systems s t = D(b { ) , for the proposed Type III system 
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where is noise due to "limiting" (limiting occurs when J3 < A ). The distribution 

of the limiting noise t } is shown in FIG. 3 c, and the average energy of the limiting 

noise is given by 

(A-/?) 3 
12A 

5 

Optimal choice of the parameters A and for a given signal-to-noise ratio 

(snr) 

/7 2 (3A-2/7) 

zm _ Signal Energy 12A 

Noise Energy Energy of Channel Noise Z 

is shown in Table 1 . In Table 1, 

10 

SNR = 101og 10 (snr) dB, and 




From the values of A and signal energy P , /3 can be obtained by solving 

yg 2 (3A-2/7) ^ p 
12A 

Table 1 - Optimal Choice of k for different SNRs 



SNR 


k 


4.77 


1.24 


3.01 


1.40 


1.76 


1.55 


0.00 


1.87 


-3.01 


2.57 


-4.77 


3.14 


-6.02 


3.59 


-6.99 


4.04 


-7.78 


4.40 


-8.45 


4.78 
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-9.03 


5.11 


-9.54 


5.41 


-10.00 


5.71 


-13.01 


8.10 


-14.77 


9.95 



The optimal parameters are chosen to minimize 

which is the normalized mean square distance between the embedded signature 
5 sequence and the detected signature sequence. The minimization performed under 
the assumption that the channel noise Z has a Gaussian distribution. If Z is zero 
mean and has a variance of a] , then 

, 1 y |EfY (2i+l)A 
'"7§f [— Z J M ^- 

where 

( A-j^l 
z — 

2_ , 

\ J. 

and 

2 t - y - 
erf(r) = -[e 2 dy 

71 b 



10 



/*(*)= 



•e + 



2A 





f A-y5 ] 

z + — 

2 


• erf 


V2C7 S 



The mapping 
15 M:I^>S, 

in the preferred embodiment takes the following form. The bit sequence I of K bits 
is grouped into K/L L-bit symbols. Each L-bit symbol will be mapped to one of in 

N 

2 basis vectors of an orthogonal transform. Thus we can embed — ^ 

symbols or bits in the sequence A. For example, 
20 ifN=8192,for 

L = 2, 3,4, 5, 6, 7, 8, 9, and 10, 

14 
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K = 8192, 6144, 4096, 2560, 1536, 896, 512, 288, and 160 bits 
respectively. 



In the preferred embodiment, L bits corresponding to each symbol are 
5 assumed to represent a decimal number between 1 and 2 L ~ l . This number is used 
as the index of the basis vector to be chosen. 

The basis vectors of a QxQ orthogonal transform where <2 = 2 L ~ 1 are 
obtained from a random seed as follows. The random seed (or key) is used to 
1 0 generate uniformly distributed random sequence 

[0 U 0 2 , >6 q ], -k <9 { <n . 



The y-1 random numbers define the phase of the discrete Fourier 

transform (DFT) of a sequence H. The magnitudes of the discrete Fourier 
1 5 coefficients are assumed to be unity. Such a sequence H is cyclic all-pass of length 
Q. H is orthogonal to all its cyclic shifts. Such a sequence derived from a random 
seed and all its cyclic shifts form a complete basis, and can therefore be considered 
as the basis vectors of a Q x Q unitary transform matrix. 



20 As an example, let 0=8. Let the —-1=3 random numbers be 

2 

[-2.7489,-0.7854,1.1781]. 
These random numbers describe are the angles of the Discrete Fourier Transform 
coefficients of H. The angles of the 8 coefficients of H are 

[0, -2.7489, -0.7854, 1 .1781, 0, -1.1781, 0.7584, 2.7489] 
25 and their magnitudes are equal to 1. The cyclic all-pass filter H is obtained by 
inverse Discrete Fourier Transform as 

[0.2915, -0.1499, 0.3999, -0.0415, 0.5621, 0.5034, -0.2534, - 

0.3121] 



30 Each segment of length Q of the signature sequence S of length N 

carries information pertaining to one symbol between 0 and 2Q-1 . 

15 
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Symbol sequence - [y u y 29 ,y N ] ; 0 < y t < 2Q-1 for all i 

Q 

Signature sequence -[S l9 S 2 , • • • , S N ] = S 

Q 

5 The algorithm for obtaining the signature sequence is as follows 

for all i 
sign=l; 

if y^Q 
drift- 

10 sign=-l; 

else 

shift = y i ; 

circularshift (sign x H, shift); 

15 For example, if 

H = [0.2915, -0.1499, 0.3999, -0.0415, 0.5621, 0.5034, -0.2534, -0.3121] 
and y t - 2 (circular shift by 2) then, 

S; = [-0.2534, -0.3121, 0.2915, -0.1499, 0.3999, -0.0415, 0.5621, 
0.5034]. 

20 

As an other example, if y x = 10 (circular shift by 10-8=2 followed by 
negation), then 

S, = [0.2534,0.3121,-0.2915,0.1499,-0.3999,0.0415,-0.5621, 
-0.5034]. 

25 

The Algorithm for the inverse mapping M~ x :S e -> I e is as follows: 
Each segment of length Q of the detected sequence S e = [S el , iS e2 , ■ • • ,S N ] 

corresponds to a symbol. The embedded symbol is estimated as follows: 
HH=DFT(H) 

16 
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for all i 

SS=DFT(S C/ ); 

YY=IDFT(SS.*HH); 

y ei =index(max(abs(YY))); 

5 if(YY[> e/ ])<0,then 



In the above algorithm, DFT stands for Discrete Fourier Transform and 
DDFT stands for Inverse DFT. y ei is the estimate of y l , which is the symbol 
1 0 embedded in the i'th segment of S. Finally, the binary representation of e y el yields 
the corresponding sequence of bits I el , and 

°Q 

I e is the estimate of the hidden bit sequence I. 
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1. A method for embedding a message signal in a host signal, said method 
comprising the steps of: 

5 (a) embedding said message signal into said host signal, thereby producing 

a stego signal; and 

(b) detecting an estimate of said message signal from said stego signal; 
provided that said detecting step (b) is not an exact inverse of said 
embedding step (a), and said host signal cannot be exactly extracted 
10 from said stego signal. 

2. The method according to claim 1, wherein said stego signal is corrupted or 
distorted prior to detecting step (b). 

15 3. The method according to claim 1, wherein said embedding step (a) produces a 
value b i in said stego signal from a value a t in said host signal, and wherein 

said embedding step (a) comprises limiting to a limit value y , a magnitude of 

difference between b f and a r 



20 4. The method according to claim 1, wherein said embedding step (a) employs a 
continuous periodic function to produce said stego signal, and wherein said 
detecting step (b) employs said continuous periodic function to produce said 
estimated message signal. 

25 5. The method according to claim 4, wherein said continuous periodic function is 
a triangular function. 



6. The method according to claim 5, wherein said triangular function / (x) has a 
period A, and 
30 wherein: 

--</(*)<- for all x; 
4 4 

18 



WO 02/13436 



PCT/US01/24468 



/(0) = ~; and 
JK T 4 



7. The method according to claim 1, wherein said embedding step (a) produces a 
value b i in the said stego signal from a value a i in said host signal and a value 

5 Si in said message signal, such that said embedding step (a): 

(i) is subject to a maximum distortion constraint P, 

(ii) employs a continuous periodic function having period A , and 

(iii) is represented by the function b t = E[a x , s t ) , and employs an algorithm 
as follows: 

10 if ra<^-)>-,then p f =3--rem(^), 

A 2 4 A 

else p } = rem(—) - — ; 

if (| e { |> 5 then e> = sign(e,)£; 

q t = rem{^) ; 
A 

15 if q { > y , then e, = ; 

if a x > 0 , then = <z, + ; 
else b t = a ; - e t . 



8. The method according to claim 2, wherein a value 6 f in said stego signal is 
20 modified after said embedding step (a) to yield a value c, in said corrupted or 
distorted stego signal, and wherein said detecting step (b): 

(i) produces a value s et in said estimated message signal from a value c { in 
said distorted stego signal, 

(ii) employs a continuous periodic function having a period A , and 
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(iii) is represented by the function ,y c/ = D{c t ) , and employs an algorithm 

as follows: 

r c i\ 
A 

if ?,>y,then ^,.=3^-?,, 
5 else s ei =q t 



9. The method according to claim 2, wherein 

said host signal is a sequence a t , for i = 1 to N; 

said message signal is a sequence s t , for i = I to j\T ; 
10 said stego signal is a sequence b i , for r = 1 to JV ; 

said corrupted or distorted stego signal is a sequence c t , for f = 1 to iV ; 
and 

said estimated message signal is a sequence s el 9 for i = 1 to N 



15 10. The method according to claim 1, wherein said embedding step (a): 

(i) imposes a limit y on a magnitude difference between a value b i in 

said stego signal that is produced from a value a t in said host 
signal; 

(ii) employs a continuous periodic function having a period A to 
20 produce said stego signal, wherein such said limit — and said period A are 

chosen to minimize a mean square distance between said message signal 
and said estimated message signal, subject to a maximum distortion 
constraint P of said embedding step (a). 

25 11. A method for mapping K information bits to a message signal s fy 
i = l to N , said method comprising the steps of: 
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grouping said K information bits together to represent one of 2 L symbols, 
wherein each said 2 L symbol is mapped to a basis vector or its negative of a 
2 L ' ] x 2 LA orthogonal transform matrix. 

5 12. The method according to claim 11, wherein said orthogonal transform matrix 
is obtained from a cyclic all-pass filter and its ciruclar shifts. 

13. The method according to claim 12, wherein said cyclic all-pass filter is 
obtained from a key. 

10 
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